I have rules for password creation. but its not simple. For all emails, forums, chars, etc needs many many passwords. I have new criterion for passwords:



1. Don`t use one password twice.

(You can use one simple password (as 123) for not important case. For access random site, forum. But you need really security password if you want write messages and use this account for private info.

And now, for registration you need use worked email. Its private info. :) )



2. One opened password don`t open other passwords. (If you use password as Word+Site, all site admin can know your passwords for all other site.)



3. You can`t remember many random password.



4. Its low security, write password on paper or files. Files can be deleted, and disk formatted too.



5. If your browser or other software can remember passwords, its not mean, you can save password only that. New version can be incompatibe with old data or clear all caches for security.



6. Many sysadmins and software setup restrictions for passwords.

You can use cyrillic (or other) alphabet or not.

You can use nonalphabetical symbols or not.

You sould use digitals in password or not.

You can change password time to time.

Minimal number of character (can be 4-6-8)

Maximal number of character (can be 6?-8-12-16-32)



in two last cases you cant use single rules for password, but 8 chars in password is good and useful idea.



A don`t now best rules for creation and remember password. May be you can help me?